Microsoft
Microsoft System Center Endpoint Protection: vulnerabilidades y CVE
Microsoft System Center Endpoint Protection tiene 13 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 2 figuran en el catálogo de explotación activa de CISA.
CVE13
Últimos 12 meses0
Críticas0
Explotadas activamente2
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
🔴 Explotadas activamente (CISA KEV)
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2017-8540 | Alta (7.8) | 72% | ⚠ Explotación activa | 26 may 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1,… |
| CVE-2021-1647 | Alta (7.8) | 39% | ⚠ Explotación activa | 12 ene 2021 | Microsoft Defender Remote Code Execution Vulnerability |
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2021-24092 | Alta (7.8) | 0.61% | — | 25 feb 2021 | Microsoft Defender Elevation of Privilege Vulnerability |
| CVE-2021-1647 | Alta (7.8) | 39% | ⚠ Explotación activa | 12 ene 2021 | Microsoft Defender Remote Code Execution Vulnerability |
| CVE-2020-1461 | Alta (7.1) | 0.72% | — | 14 jul 2020 | An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka… |
| CVE-2020-1170 | Alta (7.8) | 1.6% | — | 9 jun 2020 | An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft… |
| CVE-2020-1163 | Alta (7.8) | 0.89% | — | 9 jun 2020 | An elevation of privilege vulnerability exists in Windows Defender that leads arbitrary file deletion on the system.To exploit the vulnerability, an attacker would first have to log on to the system, aka 'Microsoft… |
| CVE-2020-1002 | Alta (7.1) | 0.71% | — | 15 abr 2020 | An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations.To exploit the vulnerability, an attacker would first have to log on to the system, aka… |
| CVE-2019-1255 | Alta (7.5) | 4.1% | — | 23 sept 2019 | A denial of service vulnerability exists when Microsoft Defender improperly handles files, aka 'Microsoft Defender Denial of Service Vulnerability'. |
| CVE-2019-1161 | Alta (7.1) | 0.90% | — | 14 ago 2019 | An elevation of privilege vulnerability exists when the MpSigStub.exe for Defender allows file deletion in arbitrary locations. To exploit the vulnerability, an attacker would first have to log on to the system. An… |
| CVE-2018-0986 | Alta (8.8) | 63% | — | 4 abr 2018 | A remote code execution vulnerability exists when the Microsoft Malware Protection Engine does not properly scan a specially crafted file, leading to memory corruption, aka "Microsoft Malware Protection Engine Remote… |
| CVE-2017-8540 | Alta (7.8) | 72% | ⚠ Explotación activa | 26 may 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1,… |
| CVE-2017-8537 | Media (5.5) | 17% | — | 26 may 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1,… |
| CVE-2017-8536 | Media (5.5) | 17% | — | 26 may 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1,… |
| CVE-2017-8535 | Media (5.5) | 17% | — | 26 may 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1,… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.